<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Show Shadow Rules 2021 Post in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/show-shadow-rules-2021-post/m-p/432827#M95793</link>
    <description>&lt;P&gt;Hello -&lt;/P&gt;&lt;P&gt;I saw a post about this from 2012 and the answer was basically no.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Well, it's been nine years now and I'm hoping there is a way to view shadow rules without doing a commit.&lt;/P&gt;</description>
    <pubDate>Thu, 09 Sep 2021 15:44:44 GMT</pubDate>
    <dc:creator>RobertShawver</dc:creator>
    <dc:date>2021-09-09T15:44:44Z</dc:date>
    <item>
      <title>Show Shadow Rules 2021 Post</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/show-shadow-rules-2021-post/m-p/432827#M95793</link>
      <description>&lt;P&gt;Hello -&lt;/P&gt;&lt;P&gt;I saw a post about this from 2012 and the answer was basically no.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Well, it's been nine years now and I'm hoping there is a way to view shadow rules without doing a commit.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Sep 2021 15:44:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/show-shadow-rules-2021-post/m-p/432827#M95793</guid>
      <dc:creator>RobertShawver</dc:creator>
      <dc:date>2021-09-09T15:44:44Z</dc:date>
    </item>
    <item>
      <title>Re: Show Shadow Rules 2021 Post</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/show-shadow-rules-2021-post/m-p/432834#M95794</link>
      <description>&lt;P&gt;I'm not sure within the NGFW GUI itself beyond policy optimizer (which I know isn't going to fulfill the exact thing you asked about), but I know for a fact expedition is able to show shadow rules and merge them. You can filter based off common fields, click analyze, and review the criteria you wish to replace/standardize.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So if you have 2 rules, one that is source 10.0.0.1 dest 1.1.1.1 port 443 and the second rule src 10.0.0.0/8 dest 1.1.1.1, 443 expedition will merge it into 1 rule and then you are able to remove the criteria you don't want to keep.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So in that way you can export the current config, clean it up in expedition, and then import it back in.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Sep 2021 16:05:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/show-shadow-rules-2021-post/m-p/432834#M95794</guid>
      <dc:creator>LAYER_8</dc:creator>
      <dc:date>2021-09-09T16:05:08Z</dc:date>
    </item>
  </channel>
</rss>

